## Get Secret

`client.secrets.retrieve(stringsecretID, RequestOptionsoptions?): CloudSecret`

**get** `/v5/sgp/secrets/{secret_id}`

Get a single secret's metadata by ID. The value is never returned.

### Parameters

- `secretID: string`

### Returns

- `CloudSecret`

  API response model for a secret. Never includes the secret value.

  - `id: string`

    The unique identifier of the entity.

  - `account_id: string`

    The ID of the account that owns the given entity.

  - `cloud_secret_path: string`

    Full path in the cloud secret store.

  - `created_at: string`

    The date and time when the entity was created in ISO format.

  - `created_by: Identity`

    The identity that created the entity.

    - `id: string`

    - `type: "user" | "service_account"`

      - `"user"`

      - `"service_account"`

    - `object?: "identity"`

      - `"identity"`

  - `key: string`

    Secret name, e.g. OPENAI_API_KEY.

  - `description?: string`

    Optional human-readable description of the secret.

  - `object?: "sgp_cloud_secret"`

    - `"sgp_cloud_secret"`

  - `updated_at?: string`

    Timestamp of last update.

  - `updated_by?: string`

    User who last updated the secret.

### Example

```typescript
import SGPClient from 'scale-gp';

const client = new SGPClient({
  accountID: 'My Account ID',
  apiKey: process.env['SGP_API_KEY'], // This is the default and can be omitted
});

const cloudSecret = await client.secrets.retrieve('secret_id');

console.log(cloudSecret.id);
```

#### Response

```json
{
  "id": "id",
  "account_id": "account_id",
  "cloud_secret_path": "cloud_secret_path",
  "created_at": "2019-12-27T18:11:19.117Z",
  "created_by": {
    "id": "id",
    "type": "user",
    "object": "identity"
  },
  "key": "key",
  "description": "description",
  "object": "sgp_cloud_secret",
  "updated_at": "2019-12-27T18:11:19.117Z",
  "updated_by": "updated_by"
}
```
